logo

Cisco Unified CM flaw actively exploited to drop webshells (CVE-2026-20230)

ID: dea5e9c7-9eae-5e57-92a0-c471ea64e21e

STIX ID: report--dea5e9c7-9eae-5e57-92a0-c471ea64e21e

Feed Name: Help Net Security

Threat Score
80/100

Date Published: 2026-06-24

Date Updated: 2026-06-24

Author: Zeljka Zorz

...
...

CVE-2026-20230, an unauthenticated SSRF in Cisco Unified Communications Manager, is being actively exploited to deploy a rogue Apache Axis service and drop webshells under /platform-services/axis2-web/, enabling remote code execution; automated scans over Tor and a public proof-of-concept increase the risk, and Cisco has released patches and advised disabling the vulnerable WebDialer service as a mitigation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.